Sr Lead Security Engineer - WFT
Listed on 2026-01-15
-
IT/Tech
Cybersecurity, Systems Engineer
Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.
As a Senior Lead Security Engineer at JPMorgan
Chase within Cyber Technology & Controls you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains.
responsibilities
- Architect, implement, and maintain security control objectives and procedures to ensure alignment with industry best practices and JPMorgan Chase (JPMC) security standards.
- Partner in the design and actively participate in building security applications and technical solutions that enforce control objectives and address recurring HR security challenges.
- Systematically identify gaps in vendor security offerings, and design and build in-house solutions to effectively mitigate these deficiencies.
- Collaborate with HR and other stakeholders to understand business processes and security pain points, translating requirements into actionable engineering solutions.
- Conduct comprehensive threat modeling for HR systems and processes; when threat models reveal security gaps, support the design and building of tailored security controls or applications.
- Develop scripts, automation, and custom code to streamline security processes, enhance monitoring, and improve the efficiency and effectiveness of security controls.
- Formal training or certification on software engineering concepts and 5+ years applied experience.
- Experience planning, designing, building and implementing enterprise level security engineering products and solutions in a public cloud environment (i.e. AWS, GCP, Azure)
- Experience working with vendors to assess the sufficiency of their security practices and controls meet industry standards.
- Extensive experience with threat modelling of applications or architectures using models such as STRIDE.
- Advanced in one or more programming languages/scripts (i.e. C/C#, Python, Power Shell)
- Advanced knowledge of secure software application development and technical processes with considerable in-depth knowledge in one or more technical disciplines (e.g., cloud, artificial intelligence, machine learning, mobile, etc.)
- Experience with continuous integration and continuous deployment (CI/CD) tools (Jenkins), version control tools (Bit Bucket, Git), managing and tracking work using management tools like Jira
- Ability to tackle design and functionality problems independently with little to no oversight
- Experience with in Cyber Security is preferred with good understanding of industry frameworks like MITRE ATT&CK, NIST, CIS etc.
- Certified Secure Software Lifecycle Professional or similar industry certification
- Excellent communication and presentation skills
- Prior experience in finance industry is a huge plus
- Willingness to learn and drive to excel
JPMorgan
Chase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).